What does this privacy policy cover?
Viewfy ("we", "our", or "us") operates viewfy.ai, related subdomains, and the Viewfy Chrome Extension. This Privacy Policy explains how we collect, use, and protect your information when you use any of those products.
What information does Viewfy collect?
We collect information in the following ways:
Information You Provide Directly:
- Account information (email address, name, password)
- Product and business information (product name, description, website URL, logo)
- Campaign content and creative assets you upload
- Targeting preferences and campaign settings
- Payment and billing information (processed by Stripe; we do not store full card numbers)
Information Collected Automatically:
- Device information (browser type, operating system)
- IP address and approximate location
- Usage data (pages visited, features used, timestamps)
- Cookies and similar tracking technologies (see Cookies section below)
Information From Meta (Facebook/Instagram):
When you use our managed advertising service, we access the following Meta data through official Meta APIs on your behalf:
- Page Information (via
pages_read_engagement): Page name, page ID, post engagement metrics, and page content used to run your ad campaigns - Ad Management Data (via
pages_manage_ads): Ad creative delivery, campaign performance metrics, spend data, impressions, clicks, and conversions - Lead Data (via
leads_retrieval): Contact information submitted by users through your lead generation forms, including names, email addresses, phone numbers, and any custom fields configured in your lead forms - Page Metadata (via
pages_manage_metadata): Used to create and configure Facebook Pages on your behalf as part of managed campaign setup - We do not receive or store your Meta login credentials
What does the Viewfy Chrome Extension collect?
Viewfy finds Reddit, LinkedIn, X, Threads, DEV, Quora, Peerlist, and Indie Hackers threads where your customers ask for your app, while you are not on those sites, and drafts the reply as your business. You just hit post. The Chrome Extension is how those drafts reach you: a toolbar queue, and a badge in the site's own comment or message field. It does not post, comment, upvote, follow, or message on your behalf. It does not collect your browsing history or read pages you have not opened.
Data the extension handles:
- Personally identifiable information: the email address on the Viewfy account you sign into
- Authentication information: OAuth access and refresh tokens for that Viewfy account, stored in the browser's
chrome.storage.local so you do not have to sign in on every page. Tokens are transmitted only to api.viewfy.ai over HTTPS. Sign out revokes the refresh token and deletes the stored tokens - Website content: the title, body, author, and visible comments of the thread you are drafting a reply to, on the tab you are viewing (Reddit, DEV.to, LinkedIn, X, Threads, Quora, Peerlist, or Indie Hackers). That text goes to api.viewfy.ai so we can write the draft. We do not read other tabs or your history
- Personal communications: if the field you focused is a LinkedIn, X, Threads, or Reddit Chat message, the visible conversation on that tab is sent the same way as a public thread
- Product choice: the Viewfy product id you pick so the draft is written in that product's voice
- Your site URL: if you set a product up from the extension, the URL you paste goes to api.viewfy.ai so we can read the site once, the same as pasting it on viewfy.ai
- Your username on a supported site: the popup can read which account you are signed in as on Reddit, X, Threads, or DEV, and offers to add it to your pace guide. That handle is sent to api.viewfy.ai only when you click "Add"; declining sends nothing
We do not collect health, financial, location, web history, or user activity beyond the single thread or visible conversation you asked him to draft against.
How that data is used:
- To authenticate you to your Viewfy account
- To generate a draft reply and return it to the reply box
- To enforce the same draft cap and approval queue as the rest of Viewfy
Thread text may be sent to our AI providers solely to generate that draft. We do not sell extension data, use it for credit or lending, or use it for advertising. Collection is limited to what is strictly necessary for the single purpose above.
Viewfy's use of information received from Google APIs will adhere to the Chrome Web Store User Data Policy, including the Limited Use requirements.
How does Viewfy use your information?
We process your information for the following purposes:
- To provide and maintain our services, including the Chrome Extension's draft replies
- To provide and maintain our advertising management services
- To create, publish, and manage ad campaigns on Meta platforms on your behalf
- To generate AI-powered ad creatives including images, videos, voiceovers, and ad copy
- To analyze campaign performance and generate actionable insights
- To process lead form submissions and deliver them to you
- To authenticate your identity and secure your account
- To process payments and manage your account balance
- To communicate service updates and respond to inquiries
- To improve and develop new features
- To comply with legal obligations
We use Meta data exclusively to provide our advertising services to you. We do not use Meta data for independent profiling, surveillance, or any purpose unrelated to delivering the services you have requested.
What data does the managed advertising service involve?
When you use our managed advertising mode, Viewfy runs ad campaigns on your behalf using our own Meta ad account. In this arrangement:
- We create and manage a Facebook Page for your product to serve as the ad identity
- Campaign budgets you deposit are used to fund ads, with a service fee retained by Viewfy
- Your creative assets and targeting preferences are submitted to Meta to run the campaigns
- Campaign performance data (impressions, clicks, spend, conversions) is collected and displayed in your dashboard
- Lead form submissions collected through your campaigns are stored and made available to you
Who does Viewfy share your data with?
We do not sell your personal information. We share data only as follows:
- Meta Platforms (Facebook/Instagram): To create and manage campaigns as you direct. Data shared includes ad creatives, targeting parameters, budget settings, and page content. This is governed by Meta's Terms of Service and Meta Platform Terms.
- AI Service Providers: We use third-party AI services to generate ad creatives and, when you use the Chrome Extension or the Scout draft queue, to write a reply from the thread text you sent us. Product descriptions, campaign briefs, and that thread text may be sent to these providers solely to generate the requested content. These providers process data under their respective privacy policies and data processing agreements.
- Payment Processors: Stripe processes payment information on our behalf. We do not store full credit card numbers.
- Hosting & Infrastructure: Cloud hosting and infrastructure providers who process data on our behalf under confidentiality and data processing agreements.
- Legal Requirements: When required by law, court order, or to protect our legal rights.
What happens to the lead data from your campaigns?
If you run lead generation campaigns, we collect and store contact information submitted by end users through your Meta lead forms. This data may include names, email addresses, phone numbers, and custom form fields.
- Lead data is stored securely and made available to you through our platform
- We do not use lead data for our own marketing purposes
- You are responsible for handling lead data in compliance with applicable privacy laws and Meta's Lead Ads Terms
- Lead data is deleted when you delete your account or upon request
How long does Viewfy keep your data?
We retain your data for as long as your account is active or as needed to provide services. Campaign data and analytics are retained for up to 2 years after campaign completion. Lead data is retained for 1 year after collection unless you delete it sooner. Upon account deletion, we remove your personal data within 30 days, except where retention is required by law or to resolve disputes.
What cookies does Viewfy use?
We use the following types of cookies:
- Essential Cookies: Required for authentication, security, and core functionality. Cannot be disabled.
- Analytics Cookies: Help us understand how you use the platform to improve our services. You may opt out via your browser settings.
We do not use advertising or cross-site tracking cookies on our platform.
How does Viewfy secure your data?
We implement industry-standard security measures including encryption in transit (TLS/HTTPS), encrypted credential storage, role-based access controls, and secure API token management. Meta access tokens are stored encrypted and are never exposed to end users. However, no method of transmission over the Internet is 100% secure.
What are your rights, and how do you delete your data?
You have the right to:
- Access a copy of your personal data
- Correct inaccurate information
- Request deletion of your personal data
- Request portability of your data in a machine-readable format
- Object to or restrict certain processing activities
- Withdraw consent at any time where processing is based on consent
- Disconnect third-party platform integrations at any time
To request data deletion or exercise your rights, email us at: m@viewfy.ai. We will respond within 30 days.
To delete tokens stored by the Chrome Extension, sign out in the extension popup. That revokes the refresh token and clears chrome.storage.local. Email us to delete drafts the extension filed to your Viewfy account.
If you connected your Meta account, you can also remove our access from your Facebook App Settings. This will trigger automatic removal of your Meta-related data from our systems. You may also visit our Data Deletion page for more details.
What is the legal basis for processing EEA and UK data?
If you are located in the European Economic Area or United Kingdom, we process your data under the following legal bases:
- Contract Performance: Processing necessary to provide the services you have requested (account management, campaign delivery, billing)
- Legitimate Interests: Analytics, service improvement, and fraud prevention, balanced against your privacy rights
- Consent: Where required, such as for optional analytics cookies
- Legal Obligation: Where we are required to retain data by law
You may lodge a complaint with your local data protection authority if you believe your rights have been violated.
What rights do California residents have?
If you are a California resident, you have additional rights under the California Consumer Privacy Act:
- Right to know what personal information is collected, used, and shared
- Right to request deletion of personal information
- Right to opt out of the sale of personal information (we do not sell personal information)
- Right to non-discrimination for exercising your privacy rights
Does Viewfy collect data from children?
Our services are not directed to individuals under the age of 18. We do not knowingly collect personal information from children. If we become aware that we have collected personal information from a child under 18, we will take steps to delete that information promptly. If you believe a child has provided us with personal data, please contact us at m@viewfy.ai.
Which third-party platforms does Viewfy integrate with?
Our services integrate with Meta (Facebook/Instagram) via their official APIs. When you use our managed advertising services, we access and manage advertising data on your behalf through Meta's platform. Your use of Meta's platforms is additionally governed by:
You can revoke our access at any time through your Meta account settings or by contacting us.
Where is your data stored and transferred?
Your data may be processed and stored in the United States or other countries where our service providers operate. If you are located outside the United States, your data may be transferred internationally. We ensure appropriate safeguards are in place for such transfers in compliance with applicable data protection laws.
How will you be told about changes to this policy?
We may update this Privacy Policy from time to time. We will notify you of material changes by email or through the application. Continued use after changes constitutes acceptance of the updated policy. The "Last updated" date at the top reflects the most recent revision.
How do you contact Viewfy about privacy?
For privacy-related questions, data requests, or complaints, contact us at: m@viewfy.ai